cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
416
Views
0
Helpful
1
Replies

The contradictory task of authentication

Anna_Katona
Level 1
Level 1

Hello!

I have a contradictory task. There is authentication with certificates (EAP-TLS) in my network. But at the same time I need to connect some devices without authentication, because some engineers need to set a lot of equipment (for example, switches, access points, servers...) MAB isn't a solution, because that is mean that every device (including  devices connected only once).

My colleague suggested solution. There is a script on a every user's PC authenticated with certificates. This script allow to connect to Cisco switch and "no shutdown" needed static access port. If device disconnected from the network port shutdown.  The engineer wanted to connect device run the script on his computer.

Have you any other ideas?

Thank you for your help!

1 Reply 1

Philip D'Ath
VIP Alumni
VIP Alumni

If they are connecting that many devices why just allocate them a permanent port that has authenticated disabled?  Everyone will then know that is the port used for testing and setting up kit.

It almost sounds to be like you need to setup a QA network separate from the main production network.

Review Cisco Networking for a $25 gift card